Creating a SharePoint Application Within a UAG Trunk

An HTTP or (preferably) HTTPS trunk needs to be created before an application such as SharePoint can be defined. Creation of this trunk is outside the scope of this book, but more information can be found at Microsoft.com/forefront on the configuration of HTTPS trunks for Forefront UAG.

From within the trunk, shown later in Figure 14.10, multiple “applications” can be created, such as one for SharePoint. To add SharePoint as an application to a trunk, perform the following steps:

  1. From within the trunk, such as the one shown in Figure 14.9, click Add to add a new application.

    Figure 14.9. Viewing a Forefront UAG trunk for a SharePoint site.

    image

  2. Click Next at the welcome screen.
  3. From the Select Application dialog box, select Microsoft SharePoint Server 2010 under the type Web. Click Next to continue.
  4. Give the application a name, such as SharePoint Extranet Farm, and click Next to continue.
  5. From the EndPoint Policies screen, select what type of policies will be enabled for the application. Custom policies can be created from within Forefront UAG that allow for restriction of what types of activities are allowed on the site. Microsoft creates default policies that can be used, as well, such as Microsoft SharePoint 2010 Download. Either use the default policies or custom policies, depending on the situation, and then click Next to continue.
  6. Under step 4, select to configure either one published server, or multiple servers, depending on how big the SharePoint farm is. For this example, we are configuring a single SharePoint server. Click Next to continue.
  7. Enter the IP address of the server, plus the public hostname that the SharePoint environment is known by. (Be sure to configure AAMs for SharePoint, such as what is illustrated earlier in this chapter under the Forefront TMG publishing scenarios.) Click Next to continue.
  8. Under step 6, typically leave the SSO settings at the default, unless you have a specific need to customize them. You will need to either add an authentication server or choose one that is already established (such as an AD domain controller). After adding an authentication server, click Next to continue.
  9. Select what type of link to include on the SSL/VPN page for the SharePoint application, such as what is shown in Figure 14.10. Click Next to continue.

    Figure 14.10. Creating a SharePoint application within a Forefront UAG trunk.

    image

  10. Specify which set of users will be authorized to use the specific application. This gives you the opportunity to restrict who has rights to which application. After making any necessary changes, click Next to continue.
  11. Click Finish when completed.

Different SharePoint applications can be created for multiple farms, and then directed at different types of users. Forefront UAG can also be set to authenticate users from multiple directory sources, allowing it to act as a metadirectory gateway for multiple platforms and environments.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset